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(54) Digital recording protection system 

(57) A system for producing an output scrambled 
digital data stream from an input scrambled digital data 
stream. The input scrambled digital data stream in- 
cludes a plurality of control messages (ECMs)» each 
ECM including coded information for generating a con- 
trol word (CW) associated with the ECM and being en- 
coded using an ECM key. The input scrambled digital 
data stream also includes a plurality of segments of 
scrambled digital data, each segment of scrambled dig- 
ital data being associated with one of the plurality of EC- 



Ms and being scrambled using the CW associated with 
the ECM. A method for producing the output scrambled 
digital data stream includes replacing each of the plu- 
rality of ECMs with a corresponding transformed ECM 
(TECM) each corresponding TECM comprising coded 
information for generating the CW associated with the 
corresponding ECM and being encoded using a TECM 
key, thus producing the output scrambled digital data 
stream, wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the TECM 
key is not replaced at the ECM key change time. 
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Description 

FIELD OF THE INVENTION 

The present Invention relates to the production and 
recording of digital data streams, particularly scrambled 
digital data strean^s such as scrambled digital television 
data streams. 

BACKGROUND OF THE INVENTION 

Systems for scrambling a television data stream are 
well-known in the art. One such system is described in 
the following US Patents: 5.282,249 to Cohen et al.; 
5.481,609 to Cohen et al. Scrambled television data 
streams described in the Cohen et al. patents comprise 
both scrambled data representing television signals and 
coded control messages, also known as ECMs, The EC- 
Ms of Cohen et al. comprise, in a coded fomn. data nec- 
essary for generating a control word (CW) which may 
be used to descramble the scrambled data representing 
television signals. 

While the two patents to Cohen et al. describe an 
analog system, that is, a system in which analog televi- 
sion data streams are broadcast to television sets, it is 
appreciated that similar ECIW methods may also be 
used for digital television data streams. Generally, the 
scrambling techniques used for scrambling analog tel- 
evision signals such as. for example, the well-known 
"cut-and-rotate" technique, are chosen for their applica- 
bility to analog signals. In scrambling of digital television 
signals other scrambling techniques, well-known in the 
art^ are used, the techniques being more appropriate to 
digital signals such as. for example, applying the well- 
known DES algorithm to the digital television signals. 

Methods of transmitting a scrambled digital signal, 
including ECMs, are described in the MPEG-2 standard, 
ISO/iEC 13818-6. 12 July 1996 and subsequent edi- 
tions. 

Recording of analog television signals such as, for 
example, recording using a VCR, is well-known in the 
art and VCR equipment is widely commercially available 
from a variety of manufacturers. Recording of digital tel- 
evision signals is also known. A consumer digital VCR 
is described, for example, in the article "A Consumer 
Digital VCR for Digital Broadcasting" by Okamoto et al.. 
published in IEEE Transactions on Consumer Electron- 
jcSj Vol. 41 , No. 3, August 1 995. pp. 643 - 649. 

US Patent 5.574,787 to Ryan describes an appara- 
tus and method for copy protection for video platfonns 
in which a specially adapted video recorder, playback 
device, or set top decoder is used to protect copyright 
material. 

European patent applicatton EP 0 714 204 A2. as- 
signed to LG ElecUonics. Inc., descrtoes a method for 
copy protection in digital video systems. 

The disclosures of all references mentioned above 
and throughout the present specification are hereby in- 



corporated herein by reference. 

SUMMARY OF THE INVENTION 

5 The present Invention seeks to provide an improved 
system for producing and recording digital datasireams, 
and particularly for protecting recorded digital data 
streams including digital television data. 

The prior art digital recording systems referred to 

TO above do not fully address the problem of recording a 
scrambled digital data stream. The term '"digital data 
stream", as used throughout the present specifrcation 
and claims, refers in a broad sense to any stream of dig- 
ital data transmitted continuously at least during a par- 

T5 ticular period of time, and particulariy includes broad- 
cast digital data such as broadcast digital television sig- 
nals. The term "scrambling" in all of its forms, as used 
throughout frie present specification and claims, refers 
to any method of scrambling, encoding, or encrypting 

20 data, many such methods being well-known in the art. 
A digital VCR such as that described by Okamoto 
et al. records and reproduces a digital bit stream; that 
is. the digital VCR of Okamoto et al. records and pro- 
duces whatever bits are presented thereto. Thus, the 

25 digital VCR of Okamoto et al, couki record and repro- 
duce a scrambled digital data stream. In the system of 
Okamoto et al., however, problems could arise in de- 
scrambling the recorded data stream such as. for exam- 
ple, for playing on a televisbn. 

^ As is well known in the art, security functions in 
scrambled television systems are typically controlled by 
a removable security element such as a removable 
smart card. Furthemnore. it is well known in the art that, 
in actual practice, operators of scrambled television sys- 

^ tems periodically replace the removable security ele- 
ments found In consumer home systems in order to 
change the security and scrambling behavfor of the sys- 
tem. 

After replacement of the removable security ele- 

^0 ment or, typically, after a limited transition period foltow- 
ing replacement of the removable security element, 
broadcasts scrambled with methods applicable to the 
previous removable security element can not be de- 
scrambled using the present removable security ele- 

45 ment. Typically, therefore, if a recording were made on 
a system such as that described by Okanrioto et al. of a 
broadcast from a digital system using techniques similar 
to those described by Cohen et al. and in the MPEG-2 
standard, both referred to above, the recording would 

so become unusable as soon as a change of removable 
security elements was carried out by the scrambled tel- 
evision system operator. The present invention seeks to 
provide apparatus and methods for recording digital da- 
ta streams which, in addition to having other features, 

^ overcome the problem of unusability of recordings after 
a change of removable security elements. 

There is thus provided in accordance with a pre- 
ferred embodiment of the present invention a method 
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for producing an output scrambled digital data stream 
from an input scrambled digital data stream, the input 
scrambled digital data stream including a plurality of 
control messages (ECMs), each ECM including coded 
infomiation for generating a control word (CW) associ- 
ated with the ECM and being encoded using an ECM 
key, the input scrambled digital data stream also includ- 
ing a plurality of segments of scrambled digital dala. 
each segment of scrambled digital data being associat- 
ed with one of the plurality of ECMs and being scram- 
bled using tiie CW associated with the ECM, the method 
including replacing each of the plurality of ECMs with a 
corresponding transformed ECM (TECM), each corre- 
spondhg TECM including coded information for gener- 
ating the CW associated with the corresponding ECM 
and being encoded using a TECM key, thus producing 
the output scrambled digital data stream, wherein the 
ECM key is replaced with a new ECM key at an ECM 
key change time, and the TECM key Is not replaced at 
the ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the step of replacing includes 
performing the loliowing steps ileratively for each one 
of the plurality of ECMs: receiving the one ECM and the 
segment of scrambled digital data associated therewith, 
generating the associated CWfrom the one ECM using 
the ECM key, generating a transformed ECM (TECM) 
including coded informatbn for generating the associ- 
ated CWand being encoded using a TECM key, ou^ut- 
ting the TECM, and outputting the segment of scram- 
bled digital data associated with the ECM. 

There is also provided in accordance with another 
preferred embodinrieni of the present invention a meth- 
od for recording, on a recording medium, a broadcast 
scrambled digital data stream to produce a scrambled 
digital recording, ihe broadcast scrambled digital data 
stream including a plurality of control messages (EC- 
Ms), each ECM including coded infonnalbn for gener- 
ating a control word (CW) associated with the ECM and 
being encoded using an ECM key, the broadcast scram- 
bled digital data stream also including a plurality of seg- 
ments of scrambled digits data, each segment of 
scrambled digital data being associated with one of the 
plurality of ECMs and being scrambled using the CW 
associated with the ECM. the method including receiv- 
ing the broadcast scrambled digital data stream, and re- 
cording on the recording medium ascrambled digital da- 
ta stream Including a plurality of transformed ECMs 
(TECMs) and the plurality of segments of digital data, 
wherein each of the plurality of ECMs is replaced with 
a corresponding TECM. each corresponding TECM in- 
cluding coded informatk)n for generating the CW asso- 
ciated with the corresponding ECM and being encoded 
using a TECM key. 

Further In accordance with a preferred embodiment 
of the present inventrcm the recording step includes per- 
fonming the following steps iteratively for each one of the 
plurality of ECMs in the broadcast scrambled digital data 



stream: generating the associated CW from the one 
ECM using Ihe ECM key, generating a TECM including 
coded infomiation for generating the associated CW 
and being encoded using a TECM key. recording the 
5 TECM on the recording medium, and recording the seg- 
ment of scrambled digital data associated with the one 
ECM on the recording medium. 

Still further in accordance with a preferred embod- 
iment of the present Invention the recording medium in- 
10 eludes a digital tape. 

Further in accordance with a preferred embodiment 
of the present invention the recording medium includes 
a computer-accessibfe storage medium associated with 
a connputer. 

^5 Additionally in accordance with a preferred embod- 
iment of the present invention the broadcast scrambled 
digital data stream includes a television scrambled dig- 
ital data stream. 

Moreover in accordance with a preferred embodi- 

20 ment of the present invention each of the plurality of EC- 
Ms is encoded using a hashing method. 

There is also provkied in accordance with another 
prefen-ed embodiment of the present inventron appara- 
tus for recording, on a recording medium, a broadcast 

25 scrambled digital data stream to produce a recorded 
scrambled digital data stream, the broadcast scrambled 
digital data stream including a plurality of scrambling 
control messages (ECMs), each ECM including coded 
infonratfon for generating a control word (CW) associ^ 

30 ated with the ECM and being encoded using an ECM 
key. and a plurality of segments of scrambled digital da- 
ta, each segment of scrambled digital data being asso- 
ciated with one of the plurality of ECMs and being 
scrambled using the CW associated with the ECM, the 

35 apparatus including receiving apparatus for receiving 
the broadcast scrambled digital data stream, and re- 
cording apparatus for recording on the recording medi- 
um a scrambled digital data stream including a plurality 
of translormed ECMs (TECMs) and the plurality of seg- 

40 ments of digital data, wherein each of the plurality of EC- 
Ms Is replaced with a corresponding TECM. each cor- 
responding TECM including coded infomiatton for gen- 
erating the CW associated with the corresponding ECM 
and being encoded using a TECM key. 

4^ There is also provided in accordance with another 
preferred ennbodiment of the present invention appara- 
tus for producing an output scrambled digital data 
stream from an input scrambled digital data stream, the 
input scrambled digital data stream including a plurality 

so of scrambling control messages (ECMs), each ECM in- 
cluding coded inf ormatbn for generating a control word 
(CW) associated with the ECM and being encoded us- 
ing an ECM key, and a plurality of segments of scram- 
bled digital data, each segment of scrambled digital data 

55 being associated with one o! the pluralrty of ECMs and 
being scrambled using the CW associated with the 
ECM, the apparatus including ECM replacement appa- 
ratus for replacing each of the plurality of ECMs with a 
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corresponding transformed ECM (TECM), each corre- 
sponding TECM including coded information for gener- 
ating the CW associated with the corresponding ECM 
and being encoded using a TECM key, wherein the ECM 
key is replaced with a new ECM key at an ECM key 5 
change time, and the TECM key is not replaced at the 
ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the recording apparatus in- 
cludes a CW extractor for generating the associated CW io 
from each of the plurality of ECMs using the ECM key, 
a TECM generator for receiving the associated CW from 
the CW extractor and for generating a TECM including 
coded information for generating the associated CW 
and being encoded using a TECM key, and medium re- is 
cording apparatus for receiving the TECM from the 
TECM generator and the segment of scrambled digital 
data from the receiving apparatus and for recording the 
TECM and the segment of scrambled digital data asso- 
ciated with the one of the plurality of ECMs on the re- 20 
cording medium. 

Still further in accordance with a preferred embod- 
iment of the present invention the ECM replacement ap- 
paratus includes a CW extractor for generating the as- 
sociated CW from each of the plurality of ECMs using 25 
the ECM key, and a TECM generator for receiving the 
associated CW from the CW extractor and for generat- 
ing a TECM including coded information for generating 
the associated CWand encoded using a TECM key. 

Additbnally in accordance with a preferred embod- 30 
iment of the present invention the apparatus incJudes a 
removable security device, wherein the removable se- 
curity device Includes the CW extractor. 

Moreover in accordance with a preferred embodi- 
ment of the present invention the removable security de- 35 
vice also includes the TECM generator. 

Further in accordance with a preferred embodiment 
of the present invention the removable security device 
includes a smart card. 

There is also provided in accordance with another 40 
preferred embodiment of the present invention appara- 
tus for transforming a scrambling control message 
(ECM) including coded rnformation for generating a con- 
trol word (CW) associated with the ECM and being en- 
coded using an ECM key Into a transformed scrambling 4S 
control message (TECM), the apparatus including ECM 
input apparatus for receiving the ECM, a CW extractor 
for generating the associated CWfrom the ECM using 
the ECM key, a TECM generator for generating a trans- 
formed ECM (TECM) including coded information for 
generating the associated C W and being eT)co(^d vs 'mg 
a TECM key, and ECM output apparatus for outputting 
the TECM. wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the TECM 
key is riot replaced at the ECM change time. 

There is also provided in accordance with another 
preferred embodintent of the present invention appara- 
tus for producing an output scrambled digital data 



stream from an input scrambled digital data stream, the 
input scrambled digital data stream including a plurality 
of control messages (ECMs). each ECM including cod- 
ed information for generating a control word (CW) as- 
sociated with the ECM and being encoded using an 
ECM key, the input scrambled digital data stream also 
including a plurality of segments o! scrambled digital da- 
ta, each segment of scrambled digital data being asso- 
ciated with one of the plurality of ECMs and being 
scrambled using the CW associated with the ECM. the 
apparatus including scrambled digital data stream Input 
apparatus for receiving an ECM and a segment of 
scrambled digital data associated therewith, ECM re- 
placement apparatus for replacingthe ECM with atrans- 
formed ECM (TECM), and scrambled digital data 
stream output apparatus for outputting the output 
scrambled digital data stream including the TECM and 
the segment of scrambled digital data, wherein the ECM 
key IS replaced with a new ECM key at an ECM key 
change time, and the TECM key is not replaced at the 
ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the apparatus includes ECM in- 
terface apparatus for outputting the ECM and receiving 
the TECM. 

Still further in accordance with a preferred embod- 
iment of the present invention the ECM interface is 
adapted to receive a removable security element. 

Additionally In accordance with a preferred embod- 
iment of the present invention the rennovable security 
element hciudes a smart card. 

There is also provided in accordance with another 
preferred embodiment of the present invention a meth- . 
od for transforming a scrambling control message 
(ECM) including coded mformaiior} for generating a con- 
trol word (CW) associated with the ECM and being en- 
coded using an ECM key into a transformed scrambling 
control message (TECM), the method including receiv- 
ing the ECM. generating the associated CW from the 
ECM using the ECM key, generating a transfonned ECM 
(TECM) including coded Information for generating the 
associated CW and being encoded using a TECM key. 
and outputtir^Q the TECM, wherein the ECM key is re- 
placed with a new ECM key at an ECM change time, 
and the TECM key is not replaced at the ECM change 
tinne. 

There is also provided in accordance with another 
preferred embodiment of the present invention a meth- 
od for producing an output scrambled digital data stream 
from an input scrambled digital data stream, the input 
scrambled digital data stream including a plurality of 
control messages (ECMs), each ECM including coded 
infonmation for generating a control word (CW) associ- 
ated with the ECM and being encoded using an ECM 
key, the input scrambled digital data stream also includ- 
ing a plurality of segments of scrambled digital data, 
each segment of scrambled digital data being associat- 
ed with one of the plurality of ECMs and being scram- 
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bled using the CW associated with the ECM. the method 
including rece iving an ECM and a segment of scrambled 
digital data associated therewith, replacing the ECM 
with a transformed ECM (TEGM), and outputting the 
output scrambled digital data stream Including the s 
TECM and the segment of scrambled digital data, 
wherein the ECM key is replaced with a new ECM key 
at an ECM key change time, and the TECM key is not 
replaced at the ECM key change time. 

Further in accordance with a preferred embodiment 
of the present invention the method also includes out- 
putting the ECM and receiving the TECM. 

Still further In accordance with a preferred embod- 
iment of the present invention the step of outputting the 
ECM and receiving the TECM includes outputting the 
ECM to a removable security element and receiving the 
TECM from the removable security element. 

Additfonally in accordance with a preferred embod- 
iment of the present invention removable security ele- 
ment includes a smart card. 

BRIEF DESCRIPTION OF THE DRAWINGS 

The present invention will be understood and ap- 
preciated more fully from the following detailed descrip- 
tion, taken in conjunction with the drawings in whbh: 

Fig. 1 is a simplified partly pictorial, partly block-di- 
agram illustration of a scrambled digital data stream 
recording and playback system, constructed and 
operative in accordance with a preferred embodi- 
ment of the present invention; 
Fig. 2 is a simplified block diagram illustrating the 
production o1 a recording scrambled digital data 
stream from a broadcast scrambled digital data 
stream by a portion of the apparatus of Fig. 1; 
Fig. 3 is a simplified block diagram illustration of a 
portion of the apparatus of Fig. 1 ; 
Fig. 4 is a simplified flowchart illustration of a pre- 
ferred method of operation of the apparatus of Fig. 
3; and 

Fig. 5 is a simplified flowchart Illustration of a pre- 
ferred implementation of step 210 of Fig. 4. 

DETAILED DESCRIPTION OF A PREFERRED 
EMBODIMENT 

Reference Is now made to Fig. 1 which is a simpli- 
fied partly pictorial, partly block-diagram illustration of a 
scrambled digital data stream (SDDS) recording and 
playback system, constructed and operative in accord- 
ance with a preferred embodiment of the present inven- 
tion. The system of Fig. 1 comprises a television set 1 00. 
The television set 100 may comprise any appropriate 
commercially available televisbn set. As described be- ss 
low, in accordance with the other elements of the system 
Fig. 1 described bek>w, the television set 1 00 nnay com- 
prise either an appropriate analog television set or an 



appropriate digital television set. 

The system of Fig. 1 also comprises an integrated 
receiver-decoder (IRD) 110. The IRD 110 maybe based 
on any appropriate commercially-available IRD opera- 
tive to receive and decode a scrambled broadcast digital 
data stream and preferably additionally contains other 
hardware and/or software components, as described 
below. 

The system of Fig. 1 also comprises a removable 
security element, such as a smart card 120, in remova- 
ble operative attachment with the IRD 110. The smart 
card 120 is typically suitably programmed, as is well- 
known in the art, to provide control words (CWs) for de- 
scrambling of a scrambled broadcast digital data stream 
by the IRD 110. Methods for programming and utilizing 
smart cards such as the smart card 1 20 to produce CWs 
are well-known in tiie art and are described, for exam- 
ple, in US Patents 5.282.249 to Cohen el al. and 
5,481,609 to Cohen et al., referred to above, with suit- 
able modifications, as are well-known in the art and de- 
scribed above, particularly in the MPEG-2 standard, for 
operating on digital rather than on anatog data. 

The system of Fig. 1 also preferably comprises a 
digital VCR 130, which may comprise any suitable dig- 
ital VCR such as, for example, the digital VCR described 
In the article "A Consumer Digital VCR for Digital Broads- 
casting" by Okanrx)to et al., referred to above. It is ap- 
preciated that any other appropriate digital recording 
paratus may be used in place of the digital VCR 13a.- 
the digital VCR 130 being shown in Fig. 1 by way of ex- 
ample only. For example, and without limiting the gen- 
erality of the foregoing, an appropriate computer system 
may be used in place of the digital VCR 130, the com^ 
puter system being typically operative to record onto a 
computer-accessible storage medium associated there- 
with. 

The IRD 110 is preferably operativety attached to 
the television set 100 and the digital VCR 130. It is ap- 
preciated that the IRD 110 may include digital-to-analog 
conversion apparatus (not shown), as is well known in 
the art, and may provide analog signals to the television 
set 100, in which case the television set 100 may com- 
prise an analog television set. Alternatively the IRD 110 
may provide digital signals to the television set 100, in 
which case the television set 1 00 may comprise a digital 
televisbn set. In any case, tl is appreciated that digital 
signals are preferably used between the IRD 110 and 
the digital VCR 130. 

The operation of the system of Fig. 1 1s now briefly 
descrtoed. The IRD 110 receives a scrambled digital da- 
ta stream, also known herein as a SDDS, from a broad- 
cast source. The broadcast source may comprise any 
appropriate broadcast source such as. for example, a 
digital cable broadcast, a local digital television broad- 
cast, or a digital satellite television broadcast, all of 
which are well-known in the art. Typically, the SDDS 
may comprise an MPEG-2 data stream, as described in 
the MPEG-2 standard, referred to above. More gener- 
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ally, it is appreciated that the present invention is not 
limited to television broadcasts, but is applicable to all 
types of digital broadcast, including data broadcasts, so 
that the broadcast source may comprise any appropri- 
ate source broadcasting a SDDS In appropriate format. 

The IRD 110, in cooperation with the smart card 
120, is preferably operative to descrambfe the SDDS. 
Typically, as is well known in the art and as is described 
above, the SDDS comprises a plurality of ECMs, Each 
ECM is associated with, and Is typically followed by, a 
scrambled digital data segment (SDSEG). Each ECM is 
typically encoded and comprises therein infonnatton, 
such as a seed, which can be used, typically by the 
smart card 1 20, to generate a CW. the CW in turn being 
utilizable to unscramble the associated SDSEG. 

It is appreciated that many different methods may 
be used to imbed the seed in the ECM and that corre- 
spondirrg methods can be used to extract the seed 
therefrom and to generate the CW. For example and 
without limiting the generality of the f cregoing» the seed 
may be the input to a one-way function such as a hash 
function, and the CW may be the result of performing 
the hash function on the seed. The CW, in turn, can be 
used, typically by the I RD 1 1 0. as a key for descrambling 
the scrambled data segment associated with the ECM. 

Reference is now additionally made to Fig. 2, which 
is a simplified block diagram illustrating the productbn 
of a recording scrambled digital data stream from a 
broadcast scrambled digital data stream by the IRD 110 
of Fig. 1. The block diagram of Fig. 2 comprises a sim- 
plified illustratbn of a broadcast SDDS 140, which, as 
described above, typically comprises a plurality of EC- 
Ms and a plurality of associated SDSEGs, such as: an 
nth ECM 145; an nth SDSEG 150 associated with the 
nth ECM 145; and n+llh ECM 155; and an n+lth SD- 
SEG 160 associated with the n+lth ECM 155. It is ap- 
preciated that the block diagram of Fig. 2 is schematic 
only, and that the plurality of ECMs and the plurality of 
associated SDSEGs need not be physically contiguous. 
One particular example of the actual layout of ECMs and 
the associated SDSEGs in an SDDS is given in the 
MPEG-2 standard, referred to above. 

The I RD 1 1 0 of Fig. 1 , in cooperation with the smart 
card 1 20, is preferably operative to process the broad- 
cast SDDS 1 40, In order to produce a recording SDDS 
165. as follows. Each ECM. such as the nth ECM 145. 
Is processed as described above, typically using an 
ECM key. which may comprise a one-way function as 
described above, the ECM key being known to the smart 
card 1 20. in order to obtain the associated CW such as 
an nth CW 1 70. The nth CW 1 70 is then processed using 
another key. referred to throughout the present specifi- 
cation and cteims as a TECM key, in order to produce 
an nth TECM 175 which may later be used, with the 
TECM key. to generate the nth CW 170. 

Preferabfy each TECM. such as. for example, the 
nth TECM 1 75. is also signed with an appropriate digital 
signature, as is well known in the art. Preferably, each 



TECM key Is associated with a unique digital signature. 
Preferably, upon subsequent playback and descram- 
bling of the recording SDDS 1 65 the digital signature is 
checked, and only a valid digital signature indicating that 

5 the recording SDDS 165 was produced with the appa- 
ratus of Fig. 1 , typically particularly with the smart card 
120 of Fig. 1, will be descrambled by the apparatus of 
Fig. 1 . The use of such a digital signature is considered 
preferable in order to discourage unauthorized duplica- 

10 tion and subsequent playback of the recording SDDS 
165 using apparatus other than the apparatus of Fig. 1 , 
particularly using a different smart card at some other 
location in place of the smart card 120. 

The TECM key may be of similar type to the ECM 
key such as, for example, a one-way function. The 
TECM key, however, is preferably permanently associ- 
ated with the system of Fig. 1; particularly, the TECM 
key does not change even when the smart card 120 is 
replaced by the system operator, as described above. 

^0 Thus, it will be appreciated that any SDDS associated 
vwth the TECM key may still be descrambled using the 
apparatus o1 Fig. 1 even after such a replacement of the 
snnartcard 120, It is appreciated that the TECM key may 
be produced in a wide variety of ways, such as, for ex- 

25 ample, the TECM key may be associated with and, typ- 
ically, stored in the IRD 110; the smart card 120; a com- 
bination of the IRD 1 1 0 and the snoart card 1 20, such as 
partly in the IRD 110 and partly in the smart card 120; 
or another portion of the system of Fig. 1 (not shown). 

30 It is also appreciated that the TECM key may be per- 
sonal to a partKular user of the apparatus of Fig, 1 , with 
more than one TECM key being associated with the ap- 
paratus of Fig. 1 and the appropriate TECM key being 
produced upon identification of a user of the apparatus 

35 of Fig. 1 by any nnethod well known in the art. such as 
by provision of a personal identificalbn number (PIN). 

It is appreciated that, in a case where the TECM key 
is at least partially associated with or stored in a remov- 
able security element such as the smart card 120, a 

^0 method is preferably provided for keeping the TECM key 
unchanged even when the smart card 120 is replaced, 
as described above. Methods for providing an unchang- 
ing item of information are well known in prior art scram- 
bled television systems using removable security ele- 

45 ments. For example, and without limiting the generality 
of the foregoing, when the smart card 1 20 is replaced 
an operation may be carried out whereby an unchanging 
item of information stored only in the smart card 120 is 
temporarily stored in the IRD 110 and is then written to 

so the replacement smart card (not shown) and erased 
from the IRD 110. Such prbr art methods, for example, 
may be used to cause a TECM key to be unchanging 
even when the smart card 120 is replaced. 

After the nth TECM 175 is generated and placed in 

55 the recording SDDS 165. the nth SDSEG 150 may be 
placed in the recording SDDS 1 65. It is appreciated that 
the present invention provides an apparatus and meth- 
od for producing an appropriate recording SDDS 165 
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without requiring descrambling ot any SDSEG such as 
the nth SDSEG 1 50 during the production of the record- 
ing SDDS 1 65 and without requiring a scrambling oper- 
ation to produce an SDSEG to occur in the system of 
Fig. 1 at any tinne. s 

it is appreciated that the nrtethod described above 
with respect to the nth EClW 145 and the nth SDSEG 
150 may be repeatedly or ileratively applied to other EC- 
Ms and the associated SDSEGs such as, for example, 
the n+1th ECM 155, associated with an n+lth CW 177, to 
to produce an n+lth TECM 180 and the n+lth SDSEG 
160 in the recording SDDS 165. 

It is also appreciated that, during playbacit of a re- 
cording SDDS from the digital VCR 1 30 through the IRD 
11 0 and associated snnart card 120 to the television 100, is 
the IRD 110 and the associated smart card 120 may per- 
form operations similar to those performed on a broad- 
cast SDDS, but using the TECM key rather than the 
ECM key. 

Reference is now mad© to Fig. 3. which is a simpli- so 
fied block diagram illustration of a portion of the IRD 110 
of Fig. 1. The portion of the IRD 110 shown in Fig. 3 ts 
shown tor providing a better understanding of the con- 
struction and operation of the present invention, with 
standard components well-known in the art, such as 2$ 
components used to receive a broadcast SDDS, not 
shown in Fig. 3. It is appreciated that the components 
shown in Fig. 3 may be provided In hardware or in soft- 
ware and, if provided in software, may be provided In 
combination In software mnning on one or more gener- 30 
alrpurpose or special-purpose processors, as is well- 
l^fiown in the art. 

The apparatus of Fig. 3 comprises a descrambler 
185 and a control word extractor 190. The control word 
extractor 190 may preferably operate as described 35 
above lo extraci CWs from ECMs in the SDDS, as de- 
scribed above, and to provide the CWs to the descram- 
bler 185. The descrambler 185 meanwhile receives SD- 
SEGs in the SDDS, as described above, and applies 
each CW received from the descrambler 1 85 to the as- 
sociated SDSEG to produce a clear signal. 

In addition, the control word extractor 190 prefera- 
bly supplies the CWs to a scrambled digital data stream 
transformer 195. the scrambled digital data stream 
transfomner 1 95 preferably comprising a TECM gener- 4S 
ator 200. The scrambled data stream transfomner 195 
also receives the broadcast SDDS and operates, as de- 
scribed above with reference to Figs. 1 and 2 and below 
with reference to Figs. 4 and 5. to produce therefrom a 
recording SDDS. which is typically provided to a record- so 
er 

It may thus be appreciated that descrambling oper- 
ations lo produce a clear signal, the descrambling op- 
eratbns being typically similar to descrambling qpera- 
tions well-known in the art, may occur in the apparatus ss 
of Fig. 3 in parallel with the production of a recording 
SDDS. It is appreciated that, in a preferred implemen- 
tation of the apparatus of Fig. 3, adequate buffering may 



be provided in the scrambled digital data stream trans- 
fomner 195 or elsewhere in order to permit continuous 
production of the recording SDDS from the broadcast 
SDDS. Such methods of buffering are well-known in the 
art. 

It is further appreciated that the apparatus of Fig. 3 
may be operative to descramble a recording SDDS and 
provide a clear signal therefrom by providing the record- 
ing SDDS as input to the apparatus of Fig. 3 in place of 
the broadcast SDDS, the control word extractor being 
operative in such a nrKKle to provide control words, as 
described above, using a TECM key rather than an ECM 
key. 

Reference is now made to Fig. 4 which is a simpli- 
fied flowchart illustration of a preferred method of oper- 
ation of the apparatus of Fig. 3. The method of Fig. 4 
preferably comprises the following steps: 

An input SDDS is received (step 205). Each ECM 
in the input SDDS is replaced with a TECM, the ECM 
comprising CW generating information and the TECM 
also comprising control word generating infonmation for 
generating the same CWasthe ECM (step 210). An out- 
put SDDS is thus produced. The output SD13S is then 
output (step 215) 

Reference is now made to Fig, 5. which is a simpli- 
fied flowchart illustration of a preferred implementation- 
of step 210 of Fig. 4. The method of Fig. 5 preferably 
comprises the following steps, whbh are preferably per^ * 
formed iteratively for each ECM in the input SDDS: 

One ECM and an SDSEG assoceted with the ECM . 
are input (step 220). The CW associated witii the ECM 
is generated from the ECM using an ECM key (step 
225). A TECM is generated using a TECM key. the 
TECM comprising infomiation for generating the same 
CW as the ECM (step 230). The TECK/I is output (step 
235), and the SDSEG associated with the ECM. and 
thus also associated with the TECM, is also output (step 
240). 

It is appreciated that various features of the inven- 
tion which are. for clarity, described in the contexts of 
separate embodiments may also be provided in combi- 
nation in a single embodiment. Conversely, various fea- 
tures of the invention which are, for brevity, described 
in the context of a single embodiment may also be pro- 
vided separately or in any suitable subcombination. It is 
particularly appreciated that the functions described 
herein as being performed by a removable security de- 
vice or smart card may be perfonned by another appro- 
priate part of the system described, such as an IRD. 

It will be appreciated by persons skilled in the art 
that the present inventran is not limited by what has been 
particularly shown and described hereinabove. Rather 
the scope of the invention is defined only the by claims 
which follow: 
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Claims 



ing: 



1 . A method for producing an output scrambled digital 
data stream from an Input scrambled digital data 
stream, the input scrambled digital data stream s 
comprising a plurality of control messages (ECMs), 
each ECM comprising coded Information for gener- 
ating a control word (CW) associated with the ECM 
and being encoded using an ECM key; the input 
scrambled digital data stream also comprising a io 
plurality of segments of scrambled digital data, each 
segment of scrambled digital data being associated 
with one of the plurality of ECMs and being scram- 
bled using the CW associated with the ECM. the 
method comprising: is 4, 

replacing each of the plurality d ECMs with a 
corresponding transformed ECM (TECM), 
each corresponding TECM comprising coded 
infomnation for generating the CW associated ^ 
with the corresponding ECM and being encod- 
ed using a TECM key, thus producing the out- 
put scrambled digital data stream, 
wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 25 
TECM key is not replaced at the ECM key 
change time. 

2. A method according to claim 1 and wherein the step 

of replacing comprises performing the following 30 
steps iteratively for each one of the plurality of EC- 5. 

Ms: 

receiving the one ECM and the segment of 
scrambled digital data associated therewith; ^ 6. 
generating the associated CW from the one 
ECM using the ECM key; 
generating a transformed ECM (TECM) com- 
prising coded infomiation for generating the as- 
sociated CW and being encoded using a TECM 40 7. 
key; 

outputting the TECM; and 
outputting the segment of scrambled digital da- 
ta associated with the ECM. 

45 a. 

3- A method for recording, on a recording medium, a 
broadcast scrambled digital data stream to produce 
a scrambled digital recording, the broadcast scram- 
bled digital data stream comprising a plurality of 9. 
control messages (ECMs), each ECM comprising so 
coded information for generating a control word 
(CW) associated with the ECM and being encoded 
using an ECM key, the broadcast scrambled digital 
data stream, also comprising a plurality of seg- 
ments of scrambled digital data, each segment of ss 
scrambled digital data being associated with one of 
the plurality of ECMs and being scrambled using the 
CW associated with the ECM. the method compris- 



receiving the broadcast scrambled digital data 
stream; and 

recording on the recording medium a scram- 
bled digital data stream comprising a plurality 
of transformed ECMs (TECMs) and the plurality 
of segments of digilal data, wherein each of the 
plurality of ECMs is replaced with a correspond- 
ing TECM, each corresponding TECM com- 
prising coded infonmation for generating the 
CW associ.ated with the corresponding ECM 
and being encoded using a TECM key. 

A method according to claim 3 and wherein the re- 
cording step comprises performing the folbwing 
steps iteratively for each one of the plurality of EC- 
IWs in the broadcast scrambled digital data stream: 

generating the associated CW from the one 
ECM using the ECM key; 
generating a TECM comprising coded inlomna- 
tion for generating the associated CW and be- 
ing encoded using a TECM key; 
recording the TECM on the recording medium; 
and 

recording the segment of scrambled digital data 
associated with the one ECM on the recording 
medium. 

A method according to erther claim 3 or claim 4 and 
wherein the recording medium comprises a digital 
tape. 

A method according to either claim 3 or claim 4 and 
wherein the recording medium comprises a compu- 
ter-accessible storage medium associated with a 
computer. 

A method according to any of claims 3 - 6 and 
wherein the broadcast scrambled digital data 
stream comprises a television scrambled digital da- 
ta stream. 

A method according to any of the preceding claims 
and wherein each of the plurality of ECMs is encod- 
ed using a hashing method. 

Apparatus for recording, on a recording medium, a 
broadcast scrambled digital data stream to produce 
a recorded scrambled digital data stream, the 
broadcast scrambled digital data stream compris- 
ing a plurafity of scrambling control messages (EC- 
Ms), each ECM conr^rislng coded informatbn for 
generating a control word (CW) associated with the 
ECM and being encoded using an ECM key, and a 
plurality of segments of scrambled digftal data, each 
segment of scrambled digital data being associated 
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with one of the plurality of ECMs and being scram- 
bled using the CW associated wrth the ECM, the 
apparatus comprising: 

receiving apparatus for receiving the broadcast s 
scrambled digital data stream; and 
recording apparatus for recording on the re- 
cording medium a scrambled digital data 
stream comprising a plurality of transformed 
ECMs (TECMs) and the plurality of segments io 
of digital data, wherein each of the plurality of 
ECMs is replaced with a corresponding TECM, 
each corresponding TECM comprising coded 
infomr^tion for generating the CW associated 
with the corresponding ECM and being encod- is 
ed using a TECM key. 

1 0. Apparatus for producing an output scrambled digital 
data stream from an input scrambled digital data 
stream, the input scrambled digital data stream 20 
comprising a plurality of scrambling control mes- 
sages (ECMs). each ECM comprising coded infor- 
mation for generating a control word (CW) associ- 
ated with the ECM and being encoded using an 
ECM key, and a plurality of segments of scrambled 25 
digital data, each segment of scrambled digital data 
being associated with one of the plurality of ECMs 
and being scrambled using the CW associated with 
the ECM, the apparatus comprising: 

30 

ECM replacement apparatus for replacing each 
^ of the plurality of ECMs with a corresponding 
'^-^ transformed ECM (TECM). each correspond- 
ing TECM comprising coded information tor 
generating the CW associated with the corre- 35 
spending ECM and being encoded using a 
TECM key. 

wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM key 40 
change time. 

11 . Apparatus according to claim 9 and wherein the re- 
cording apparatus comprises: 

a CW extractor for generating the associated 
CW from each of the plurality of ECMs using 
the ECM key; 

a TECM generator for receiving the associated 
CW from the CW extractor and for generating so 
a TECM comprising coded infonmation for gen- 
erating the associated CW and being encoded 
using a TECM key; and 
medium recording apparatus for receiving the 
TECM from the TECM generator and the seg- ss 
ment of scrambled digital data from the receiv- 
ing apparatus and for recording the TECM and 
the segment of scrambled digital data associ- 



ated with the one of the plurality of ECMs on 
the recording medium. 

12. Apparatus according to claim 10 and wherein the 
ECM replacement apparatus comprises: 

a CW extractor for generatPig the associated 
CW from each of the plurality of ECMs using 
the ECM key; and 

a TECM generator for receiving the associated 
CW from the CW extractor and for generating 
a TECM connprising coded informatk^n lor gen- 
erating the associated CW and encoded using 
a TECM key. 

13. Apparatus according to either claim 11 or claim 12 
and also comprising a removable security device, 

wherein the removable security device com- 
prises the CW extractor. 

14. Apparatus according to claim 13 and wherein the 
removable security device also comprises the 
TECM generator. 

15. Apparatus according to either claim 1 3 or claim 14 
and wherein the removable security device com- 
pnses a smart card. 

16. Apparatus for transforming a scrambling control 
message (ECM) comprising coded mformation lop. 
generating a control word (CW) associated with the 
ECM and being encoded using an ECM key into a 
transformed scrambling control message (TECM). 
the apparatus comprising: 

ECM input apparatus for receiving the ECM; 
a CW extractor for generating the associated 
CW from the ECM using the ECM key; 
a TECM generator for generating a trans- 
formed ECM (TECM) comprising coded infor- 
mation for generating the associated CW and 
being encoded using a TECM key; and 
ECM output apparatus for outputting the 
TECM. 

wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM change 
time. 

1 7. Apparatus for producing an output scrambled digital 
data stream Uom an input scrambled digital data 
stream, the input scrambled digital data stream 
comprising a plurality of control messages (ECMs), 
each ECM comprising coded information for gener- 
ating a control word (CW) associated with the ECM 
and being encoded using an ECM key, the input 
scrambled digital data stream also comprising a 
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plurality of segments ot scrambled digital data, each 
segment of scrambled digital d^la baingassociated 
with one of the plurality ol ECMs and being scram- 
bled using the CW associated with the ECM, the 
apparatus comprising: s 

scrambled digital data stream Input apparatus 
for receiving an ECM and a segment of scram- 
bled digital data associated therewith; 
ECM replacement apparatus for replacing the 
ECM with a transformed ECM (TECM); and 
scrambled digital data stream output apparatus 
for outputting the output scrambled digital data 
stream comprising the TECM and the segment 
of scrambled digital data, is 
wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM key 
change time. 

20 

18. Apparatus according to claim 1 7 and also compris- 
ing: 

ECM interface apparatus for outputting the 
ECM and receiving the TECM. 2S 

19. Apparatus according to claim 18 and wherein the 
ECM interface is adapted to receive a removable 
security element. 

30 

20. Apparatus according to claim 19 and wherein the 
removable security element comprises a smart 
card. 

21. A method for transforming a scrambling control 3S 
message (ECM) comprising coded Information for 
generating a control word (CW) associated with the 
ECM and being encoded using an ECM key into a 
transformed scrambling control message (TECM), 

the method comprising: 40 

receiving the ECM; 

generating the associated CW from the ECM 
using the ECM key; 

generating a transformed ECM (TECM) com- 45 
prising coded infomnation for generating the as- 
sociated CW and being encoded using a TECM 
key; and 

outputting the TECM. 

wherein the ECM key is replaced with a new so 
ECM key at an ECM change time, and the 
TECM key is not replaced at the ECM change 
lime. 



each ECM comprising coded inf omiation for gener- 
ating a control word (CW) associated with the ECM 
and being encoded using an ECM key, the input 
scrambled digital data stream also comprising a 
plurality of segments of scrambled digital data, each 
segment of scrambled digital data being associated 
with one of the plurality of ECMs and being scram- 
bled using the CW associated with the ECM. the 
method comprising: 

receiving an ECM and a segment of scrambled 
digital data associated therewith; 
replacing the ECM with a transfonmed ECM 
(TECM); and 

outputting the output scrambled digital data 
stream comprising the TECM and the segment 
of scrambled digital data, 
wherein the ECM key is replaced with a new 
ECM key at an ECM key change time, and the 
TECM key is not replaced at the ECM key 
change time. 

23. A method according to claim 22 and also compris- 
ing: outputting the ECM and receiving the TECM. 

24. A method according to claim 23 and wherein the 
step of outputting the ECM and receiving the TECM 
comprises: 

outputting the ECM to a renrwvable security el- 
ement and receiving the TECM from the remov- 
able security element 

25. A method according to claim 24 and wherein the 
removable security element comprises a smart 
card. 



22, A method for producing an output scrambled digital ss 
data stream from an input scrambled digital data 
stream, the input scrambled digital data stream 
comprising a plurality of control messages (ECMs), 
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RECEIVE INPUT SCRAMBLED 
LATA STREAM 
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REPUCE EACH ECU HAVING CW GENERATING 
INFORMATION IN THE INPUT SCRAMBLED DATA 
STREAM WITH A TECM HAVING INFORMATION 
FOR GENERATING THE SAME CW 
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OUTPUT THE OUTPUT SCRAMBLED 
DATA STREAM 



FIG. 5 

PERFORM ITERATIVELY FOR EACH ECM: 



INPUT ONE ECM AND A SEGMENT OF SCRAMBLED 
DIGITAL DATA ASSOCIATED WITH THE ONE ECM 



7 



220 



225 



GENERATE THE ASSOCIATED CW FROM 
THE ONE ECM USING AN ECM KEY 
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GENERATE A TECM HAYING INFORMATION 
. FOR GENERATING THE SAME CW 
ENCODED USING A TECM KEY 
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OUTPUT THE TECM 
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OUTPUT THE SEGMENT OF SCRAMBLED 
DIGITAL DATA ASSOCIATED WITH THE ECM 
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